Studying on a penetration testing framework for software-defined networks안전한 소프트웨어 정의 네트워크 환경을 구축하기 위한 보안 침투 도구 연구

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 959
  • Download : 0
DC FieldValueLanguage
dc.contributor.advisorShin, Seung Won-
dc.contributor.advisor신승원-
dc.contributor.authorLee, Seung-Soo-
dc.contributor.author이승수-
dc.date.accessioned2017-03-29T02:41:21Z-
dc.date.available2017-03-29T02:41:21Z-
dc.date.issued2016-
dc.identifier.urihttp://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=649706&flag=dissertationen_US
dc.identifier.urihttp://hdl.handle.net/10203/221950-
dc.description학위논문(석사) - 한국과학기술원 : 정보보호대학원, 2016.2 ,[v, 42 p. :]-
dc.description.abstractDeveloping a systematic understanding of the attack surface of emergent networks, such as software defined networks (SDNs), is necessary and arguably the starting point toward making it more secure. Prior studies have largely relied on ad-hoc empirical methods to evaluate the security of various SDN elements from different perspectives. However, they have stopped short of converging on a systematic methodology or developing automated systems to rigorously test for security flaws in SDNs. Thus conducting security assessment of new SDN software remains a non-replicable and unregimented process. This paper makes the case for automating and standardizing the vulnerability identification process in SDNs. As a first step, we develop a penetration testing tool, POSEIDON, that reinstantiates published SDN attacks in diverse test environments. Furthermore, we enhance our tool with a fuzzing module to potentially detect other unknown vulnerabilities. In our evaluation, POSEIDON successfully reproduced 20 known attack scenarios, across diverse SDN controller environments, and also discovered 7 novel SDN application mislead attacks.-
dc.languageeng-
dc.publisher한국과학기술원-
dc.subjectSoftware-defined networks-
dc.subjectsecurity-
dc.subjectnetworking-
dc.subjectpenetration tool-
dc.subjectfuzzing-
dc.subject소프트웨어 정의 네트워크-
dc.subject보안-
dc.subject네트워킹-
dc.subject침투도구-
dc.subject퍼징-
dc.titleStudying on a penetration testing framework for software-defined networks-
dc.title.alternative안전한 소프트웨어 정의 네트워크 환경을 구축하기 위한 보안 침투 도구 연구-
dc.typeThesis(Master)-
dc.identifier.CNRN325007-
dc.description.department한국과학기술원 :정보보호대학원,-
Appears in Collection
IS-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0